Bi-directional RPC communications on dynamic TCP ports are required between all vCenters in Linked Mode. Connections and ports are required between vCenter Server, Site Recovery Manager, and other VMware products for monitoring, management, and communication. Common ports include TCP ports 80, 443, 389, 902, and 8443.
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Connections and ports required for vCenter Server and associated VMware management products
1. Bi-directional RPC communications on
VCO VCO DB
Connections & Ports in ESX & ESXi
dynamic TCP ports required between
all vCenters in Linked Mode (via ADAM)
Client REMOTE
Including vCenter Server, Site Recovery Manager, VMware Consolidated Backup, VMware Data Recovery, VMware Update Manager, VMware Orchestrator and VMware Converter
RPC RPC
VMware vCenter
Server
80
+4
Linked Linked
Linked (SRM)
43
FTP SSH FTP SSH SMB
/T
CP
vCenter
vCenter
vCenter
/R
Client Client Server Server Server
ed
Server Server
Server
ire
ct
br
1521/TCP/Oracle
ow
1433/TCP/MS SQL 80/TCP/SRM communication with remote vCenter
se
iSCSI 3306/TCP/MySQL
rt
Server(Port 80 is used for the initial connection to
oH
90 0/TC CP/
8 0 4 3/
5432/TCP/PostgresSQL the remote site. After the initial HTTP connection is
84
3/
8 T
TT
SAN made, the two sites establish an SSL connection
TC P/M an
PS
P/ an age
389/TCP/Bi-direction over port 80 for subsequent connections.)
VI aa m
se
-v
LDAP authentication with 8230/TCP/Lookup
rvi
M
Sp gem ent
ce
Kerberos encryption 8240/TCP/Command External
r
he en We
se
C cti t
so ty
(4
API Client
e n
between vCenter Servers 8250/TCP/Messaging
re t W b
ow
on vi
VM n e
Site
le
43
e on m
)
43
Cl
8282/TCP/HTTP
br
ot M c age
)
ien eb erv
(4
ia
8283/TCP/HTTPS
Recovery
em V n
9007/TCP/SOAP
tv
S
tt
R ed Ma
TP
en
32
o
t t
VM rvice s HT
60
em
VM o s o s
HT
Manager
Se ice
22
S
/T
/H /H
ag
CP
Co s H TPS
/TC
Active Directory Server
to
TC P P
P/SSH
B
an
3/ C C
SNMP /S
er
21/TC
M
ns TT
/T /T
s
P
M
o
ice
ws
/S
90 2 3
ftw
ole P
/S
90 44
VI
v
CP
os
P/
ro
a 21 r
S
re Se
22/TC
st
er
Server
H
tb
/T
P/FTP
9/T
o
iS CP rb n rd
/H
ec
CS
Ke atio swo
13
P
/F
dir
IC -
TC
TP n ic s
7-
io ent Pa
e
lie 1521/TCP/Oracle
/R
3/
88
13
nt at h s
44
44
CP
tic Aut ero
+4
5+
ad
& -OR-
3/
en
45
Ha
lo
/T
th AD erb
44
TC
1433/TCP/MS SQL
wn
/T
rd
80
Au M K FlexLM
P
C
wa
do
D /P on - -OR-
/V
P
re A P i
&
I/v
in
iS M UD icat License Server 8280/TCP/HTTP 5000/TCP/IBM DB2
ug
U
Sp
CS PA & t
D
Pl
P/ CP then
P/
he
IH
16 sts
&
27
AD
C
re
1/U BA /T 5/T Au ho sts
n
27 000
NFS
tio
Au
DP 88 44 D
cli
3.x ho 01 /T
ica
/SN VI 3.x
en
th
A 0/T CP
for I
e
un
MP M
ta
CP /fo
nt
Server PA P/ or V
m
Po
ic
/ /fo r V